SBI Data Leak – Millions of Customers Data Leaked From Unsecured Server

SBI Data Leak allows anyone to access millions of its customer’s financial data and recent transactions history.

SBI is an Indian multinational, public sector banking and financial services, it is the largest bank in India with a 23% market share in assets.

According to TechCrunch report, an SBI server in Mumbai-based data center that stored the data from SBI Quick was left online without any password protection.

SBI Quick is free SBI service used by customers to get Account Balance, Mini Statement and more just by giving a Missed Call or sending an SMS with pre-defined keywords to pre-defined mobile numbers.

The bank has failed to protect the server which allows anyone by having the IP address of the server can access the data on millions of customers’ information.

It is not known for how long the server is kept open, Techcrunch confirms the server storing millions of messages every day.

Techcrunch reached out to SBI and the bank reacted quickly and fixed the issue within hours. If this information accessed by threat actors will pose a serious risk to bank customers.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Massive Collection of 2.2 Billion Usernames and Passwords Circulated in Hacker Forums

Cybercrime as a Service – Hackers Selling Ransomware, RDP logins and Credit Card Details on the Underground Markets

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Nearest Neighbor Attacks: Russian APT Hack The Target By Exploiting Nearby Wi-Fi Networks

Recent research has revealed that a Russian advanced persistent threat (APT) group, tracked as "GruesomeLarch"…

1 day ago

240+ Domains Used By PhaaS Platform ONNX Seized by Microsoft

Microsoft's Digital Crimes Unit (DCU) has disrupted a significant phishing-as-a-service (PhaaS) operation run by Egypt-based…

2 days ago

Russian TAG-110 Hacked 60+ Users With HTML Loaded & Python Backdoor

The Russian threat group TAG-110, linked to BlueDelta (APT28), is actively targeting organizations in Central…

2 days ago

Earth Kasha Upgraded Their Arsenal With New Tactics To Attack Organizations

Earth Kasha, a threat actor linked to APT10, has expanded its targeting scope to India,…

2 days ago

Raspberry Robin Employs TOR Network For C2 Servers Communication

Raspberry Robin, a stealthy malware discovered in 2021, leverages advanced obfuscation techniques to evade detection…

2 days ago

145,000 ICS Systems, Thousands of HMIs Exposed to Cyber Attacks

Critical infrastructure, the lifeblood of modern society, is under increasing threat as a new report…

2 days ago